June 27, 2024, 2:56 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Intrusions with Snowblind involved the injection of a seccomp filter to intercept system calls, as well as a SIGSYS signal handler to direct anti-tampering code to unchanged APK versions allowing the deactivation of several app security features.


Article Link: New Snowblind Android trojan examined | SC Media


1 post - 1 participant


Read full topic

android android trojan apk app article code deactivation features filter injection intercept link media seccomp security security features signal snowblind system tampering topic trojan

Software Engineer

@ Booz Allen Hamilton | USA, VA, McLean (8283 Greensboro Dr, Hamilton)

SOC Level 1 Engineer

@ Groupon | Remote - India

Senior Technology Auditor (Continuous Process Monitoring)

@ CNA Insurance | US- IL40- Chicago-151N Frankln

Sr. Director, Tech Process Management (ES Risk)

@ Capital One | McLean, VA

AVP, Pre-Sales and Professional Services for Group Benefits & Affinity

@ Manulife | CAN, Ontario, Toronto, 250 Bloor Street East

Software Engineer III

@ Walmart | IN KA BANGALORE Home Office PW II